--- lib/MT/App/Comments.pm.orig Thu Jan 15 17:41:46 2004 +++ lib/MT/App/Comments.pm Fri Feb 20 23:34:28 2004 @@ -59,6 +61,10 @@ my $app = shift; my $q = $app->{query}; + if( $ENV{REQUEST_METHOD} ne "POST" ){ + return $app->error("Please use POST to post a comment."); + } + my $entry_id = $q->param('entry_id') or return $app->error("No entry_id"); require MT::Entry; --- lib/MT/App/Trackback.pm.orig Thu Jan 15 17:41:46 2004 +++ lib/MT/App/Trackback.pm Sat Feb 21 00:58:23 2004 @@ -110,6 +110,11 @@ sub ping { my $app = shift; my $q = $app->{query}; + + if( $ENV{REQUEST_METHOD} ne "POST" ){ + return $app->_response(Error => "Please use POST to send a Trackback Ping."); + } + my($tb_id, $pass) = $app->_get_params; return $app->_response(Error => $app->translate("Need a TrackBack ID (tb_id)."))